Bug 2002496

Summary: redhat-release should ship public secureboot certs in a well-known location
Product: Red Hat Enterprise Linux 9 Reporter: Brian Stinson <bstinson>
Component: redhat-releaseAssignee: Stephen Gallagher <sgallagh>
Status: CLOSED ERRATA QA Contact: Release Test Team <release-test-team-automation>
Severity: unspecified Docs Contact:
Priority: unspecified    
Version: 9.0CC: jwboyer, lisas, pzatko, sgallagh
Target Milestone: rcKeywords: TestCaseNeeded
Target Release: ---   
Hardware: Unspecified   
OS: Unspecified   
Whiteboard:
Fixed In Version: redhat-release-9.0-2.6.el9 Doc Type: If docs needed, set a value
Doc Text:
Story Points: ---
Clone Of: Environment:
Last Closed: 2022-05-17 15:35:34 UTC Type: Bug
Regression: --- Mount Type: ---
Documentation: --- CRM:
Verified Versions: Category: ---
oVirt Team: --- RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: --- Target Upstream Version:
Embargoed:

Description Brian Stinson 2021-09-09 02:14:22 UTC
This is the redhat-release counterpart to: https://bugzilla.redhat.com/show_bug.cgi?id=1997343

We should ship the following certs:

redhatsecurebootca3.cer (s390x CA)
redhatsecurebootca5.cer (x86/aarch64 CA)
redhatsecurebootca6.cer (ppc64le CA)
redhatsecureboot302.cer (s390x kernel signing)
redhatsecureboot501.cer (x86/aarch64 kernel signing)
redhatsecureboot502.cer (x86/aarch64 grub2 signing)
redhatsecureboot503.cer (x86/aarch64 fwupd signing)
redhatsecureboot601.cer (ppc64le kernel signing)
redhatsecureboot602.cer (ppc64le grub2 signing)

Comment 1 Stephen Gallagher 2021-09-09 18:23:33 UTC
Merge request submitted: https://src.osci.redhat.com/rpms/redhat-release/pull-request/26

Comment 11 errata-xmlrpc 2022-05-17 15:35:34 UTC
Since the problem described in this bug report should be
resolved in a recent advisory, it has been closed with a
resolution of ERRATA.

For information on the advisory (new packages: redhat-release), and where to find the updated
files, follow the link below.

If the solution does not work for you, open a new bug report.

https://access.redhat.com/errata/RHBA-2022:3893